regist123
Gold Member | Редактировать | Профиль | Сообщение | Цитировать | Сообщить модератору Malwarebytes Anti-Malware www.malwarebytes.org Проверка Дата: 07.12.2014 Время сканирования: 23:19:46 Logfile: mbam 22.txt Администратор: Да Версия: 2.00.4.1028 База данных вредоносных программ: v2014.12.07.10 Rootkit базы данных: v2014.12.03.01 Лицензия: Бесплатно Защита от вредоносных программ: Инвалидов Защита вредоносных веб-сайтов: Инвалидов Самозащиты: Инвалидов OS: Windows XP Service Pack 3 ПРОЦЕССОР: x86 Файловая система: NTFS Пользователь: User Тип сканирования: Пользовательские Scan Результат: Завершено Проверенных объектов: 301020 Прошедшее время: 15 мин, 58 сек Память: Включено Запуск: Включено Файловая система: Включено Архивы: Включено Руткиты: Инвалидов Эвристики: Включено ЩЕНОК: Включено PUM: Включено Процессы: 0 (Вредоносные элементы не обнаружено) Модули: 0 (Вредоносные элементы не обнаружено) Ключи реестра: 3 Trojan.FlyStudio, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SETUP.EXE, , [0ff7f56b700cb97dfd05101efc093bc5], Adware.ChinAd, HKU\S-1-5-21-823518204-796845957-682003330-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLAPLUGINS\@taotaosou.com/nptaotaosouplugin, , [709694cc1f5dc076a1f25b0ae221ee12], Adware.ChinAd.A, HKU\S-1-5-21-823518204-796845957-682003330-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\???¤???¤????A±?˜N˜?«(???¤??A¬N???), , [2cda134d6913e1558c1624091ce7d729], Значения реестра: 3 Hijack.ControlPanelStyle, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER|ForceClassicControlPanel, 1, , [808664fc6b11d85e714b1ddcae5501ff] Hijack.ControlPanelStyle, HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER|ForceClassicControlPanel, 1, , [0006a6babac27cba5d5ffcfd3cc71ee2] Hijack.ControlPanelStyle, HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER|ForceClassicControlPanel, 1, , [cc3aea76bbc12a0c9527d425877c16ea] Данные реестра: 0 (Вредоносные элементы не обнаружено) Папки: 10 Adware.ChinAd, C:\Documents and Settings\User\Application Data\TaotaoSou, , [34d20b5591eb1d199cf4026373904cb4], Adware.ChinAd, C:\Documents and Settings\User\Application Data\TaotaoSou\userimg, , [34d20b5591eb1d199cf4026373904cb4], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage\images, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage\mustache, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage\scripts, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage\styles, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\logs, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\update, , [2cda134d6913e1558c1624091ce7d729], Файлы: 54 Trojan.Agent.UXH, C:\111\0x2hdn-1002-5064.exe, , [12f4db85b8c43bfb07ee34bc08f9a060], Trojan.FlyStudio, C:\Documents and Settings\User\Desktop\AutoLogger\AVZ\Quarantine\2014-12-07\avz00095.dta, , [759139276d0f40f6ca38fa34bc4910f0], Backdoor.Bot, C:\Documents and Settings\User\Desktop\AutoLogger\AVZ\Quarantine\2014-12-07\avz00098.dta, , [d1354c143c4088ae4bda62d76b97ff01], Trojan.PWS.OnlineGames, C:\Program Files\appers_7_2715.exe, , [7e8830301b614cea5e661335b3526898], Trojan.FlyStudio, C:\Program Files\setup.exe, , [0ff7f56b700cb97dfd05101efc093bc5], Backdoor.Bot, C:\Program Files\xueba\internet.fne, , [2ed8e57b8bf142f4be67300903ff6799], Trojan.FlyStudio, C:\Program Files\xueba\ketang.exe, , [c93d7ee2ee8ee6507a8842ec57aee51b], Trojan.FlyStudio, C:\Program Files\xueba\xueba.exe, , [b94d71efbcc022142ad837f77392bc44], Trojan.Agent.UXH, C:\tools\Samples\C__111_0x2hdn-1002-5064.exe, , [10f6035d7ffd4bebfff61ed218e9b050], Trojan.PWS.OnlineGames, C:\tools\Samples\C__Program_Files_appers_7_2715.exe, , [6e9895cb90ecef478f35d2769c6902fe], Trojan.FlyStudio, C:\tools\Samples\C__Program_Files_setup.exe, , [57afbba53f3d59dd7d85b47a679e9769], Trojan.FlyStudio, C:\tools\Samples\C__Program_Files_xueba_xueba.exe, , [43c33a26fa82a98db949a38b0302b14f], Trojan.FlyStudio, C:\tools\Samples\C__Program_Files_xueba_ketang.exe, , [ad5986da215b6ccab949c866b2539c64], Trojan.FlyStudio, C:\tools\Samples\C__Program_Files_xueba_KEtangtp.exe, , [9670a4bc453748ee679bb27cf90cf30d], Backdoor.Bot, C:\Utiliti\uVS\ZOO\INTERNET.FNE._E3FC632AF5E1F36E8022E651F64EB8F8381C73C3, , [060078e8bdbf32041b0a39007c86c13f], Trojan.FlyStudio, C:\Utiliti\uVS\ZOO\KETANG.EXE._99D1F0E6B715F6311D1F2B2505DFAEFD1EADAEB5, , [20e6a6ba215b2d095ba73ef06c99946c], Trojan.FlyStudio, C:\Utiliti\uVS\ZOO\KETANGTP.EXE._8B5498F4C247BA085FADAF6AA9DBD27A38FF73D0, , [f313db85d9a3ea4cee148da148bd04fc], Trojan.FlyStudio, C:\Utiliti\uVS\ZOO\XUEBA.EXE._16995E3892F49ED76FD1451E2E7EE1DB1B205251, , [41c5510fdba19f97ac56171706ff5da3], Adware.ChinAd, C:\Documents and Settings\User\Application Data\TaotaoSou\TTSConfig.ini, , [34d20b5591eb1d199cf4026373904cb4], Adware.ChinAd, C:\Documents and Settings\User\Application Data\TaotaoSou\RunConfig.ini, , [34d20b5591eb1d199cf4026373904cb4], Adware.ChinAd, C:\Documents and Settings\User\Application Data\TaotaoSou\ttsusign, , [34d20b5591eb1d199cf4026373904cb4], Adware.ChinAd, C:\WINDOWS\Tasks\TaoTongKuanUpdateTask.job, , [e12594ccfd7f95a120718fd6ea19a55b], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\tts.browser.liebao.crx, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\360SE_1, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\360SE_2, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\Chrome_1, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\CrashReport.exe, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\default.dat, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\DuiLib.dll, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\dump.dll, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\license.txt, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\monitor.ini, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\netinfo.txt, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\nptaotaosouplugin.dll, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\TaoTaoSou.exe, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\TTKInsAssistant.dll, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\TTKMonitor.exe, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\TTKSextIns.exe, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\ttk_icon.ico, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\tts.browser.sogou.sext, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\TTSIEPlugin_64.dll, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\TTSRegPlugin.bat, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\TTSUNRegPlugin.bat, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\uninst128.ico, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\Uninstall.exe, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage\images\ajax_load.gif, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage\images\client_bg.png, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage\images\network.png, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage\mustache\network.html, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage\mustache\redirect.html, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage\scripts\network.js, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage\scripts\redirect.js, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\localpage\styles\network.css, , [2cda134d6913e1558c1624091ce7d729], Adware.ChinAd.A, C:\Documents and Settings\User\Local Settings\Application Data\TaoTaoSou\TTK\logs\2014-12-7.log, , [2cda134d6913e1558c1624091ce7d729], Физические секторы: 0 (Вредоносные элементы не обнаружено) (end)
| Всего записей: 7189 | Зарегистр. 20-03-2009 | Отправлено: 00:04 08-12-2014 | Исправлено: regist123, 19:01 08-12-2014 |
|